Generated by All in One SEO v5.0.0.1, this is an llms.txt file, used by LLMs to index the site.## Sitemaps - [XML Sitemap](https://www.globalsecurityiq.com/sitemap.xml): Contains all public & indexable URLs for this website. ## Posts - [Break down gender stereotypes by closing the cyber skills gap](https://www.globalsecurityiq.com/2021/04/06/break-down-gender-stereotypes-by-closing-the-cyber-skills-gap/) - Many fields in tech over the years have had huge growth in the fields of Science and Technology. Over the past 50 years, the number of women in fields like mathematics and physical sciences has grown from 17% of the work force to almost half (47% and 45% respectively). Computer workers and engineers are - [A New Malware Campaign Silently Injects Ads Into Search Results Pages](https://www.globalsecurityiq.com/2020/12/14/a-new-malware-campaign-silently-injects-ads-into-search-results-pages/) - The Microsoft 365 Defender Research Team recently reported on Adrozek, a relatively new widespread malware campaign that infects [...] - [Ransomware Gangs are Now Cold-Calling Victims](https://www.globalsecurityiq.com/2020/12/07/ransomware-gangs-are-now-cold-calling-victims/) - According to ZDNet, a new ransomware trend has emerged and is being utilized by gangs such as [...] - [The Cost of a Data Breach](https://www.globalsecurityiq.com/2020/10/14/the-cost-of-a-data-breach/) - With October being Cybersecurity Awareness Month, it is important to know how much a data breach can cost your organization if [...] - [Analyzing the COVID-19 Data Breach Landscape](https://www.globalsecurityiq.com/2020/10/14/analyzing-the-covid-19-data-breach-landscape/) - It’s October which means that it’s Cybersecurity Awareness Month! This year, more than ever, all [...] - [Garmin Hit With Ransomware Attack](https://www.globalsecurityiq.com/2020/08/03/garmin-hit-with-ransomware-attack/) - The smartwatch and wearable technology manufacturer Garmin was recently struck by a ransomware attack, encrypting [...] - [TikTok and Data Security: What are the Privacy Risks?](https://www.globalsecurityiq.com/2020/07/20/tiktok-and-data-security-what-are-the-privacy-risks/) - TikTok, a video-based social media application, has been quickly gaining popularity throughout the world, especially […] - [Understanding and Preparing for the CMMC](https://www.globalsecurityiq.com/2020/07/14/understanding-the-cmmc/) - The Cybersecurity Maturity Model Certification (CMMC) is a new cybersecurity standard that will be utilized on all future Department of Defense (DoD) acquisitions to regulate […] - [The SANS institute and NIST establish password expiration is no longer effective](https://www.globalsecurityiq.com/2020/05/08/the-sans-institute-and-nist-establish-password-expiration-is-no-longer-effective/) - The SysAdmin, Audit, Network and Security (SANS) institute and the National Institute of Standards and Technology (NIST) has made it clear that password expiration is a dying concept. Password expiration had its time and place, but now its time for it to fade out of our security awareness practices. View the link below for more - [NIST has spoken! Death to overly complex and ever-expiring passwords!](https://www.globalsecurityiq.com/2020/05/08/nist-has-spoken-death-to-overly-complex-and-ever-expiring-passwords/) - The National Institute of Standards and Technology (NIST) has made it clear that highly complex passwords should no longer be the standard practice. Organizations should begin instituting long passwords/passphrases without complicated complexity requirements. View the link below for more information regarding password complexity Death to Complexity, Long Live the Passphrase - [FBI warns of COVID-19 Email Phishing Against US Healthcare Providers](https://www.globalsecurityiq.com/2020/04/22/fbi-warns-of-covid-19-email-phishing-against-us-healthcare-providers/) - Following a global increase in malicious cyber activity exploiting fear derived from the COVID-19 pandemic, the FBI was notified of targeted email phishing attempts against US-based medical providers. These phishing emails leveraged content relating to COVID-19 to mask and distribute malicious attachments to US healthcare providers. The FBI recommends companies targeted by a phishing campaign - [FBI Sees Rise in Fraud Schemes Related to the Coronavirus (COVID-19) Pandemic](https://www.globalsecurityiq.com/2020/03/26/fbi-sees-rise-in-fraud-schemes-related-to-the-coronavirus-covid-19-pandemic/) - An Internet Crime Complaint Center (IC3) PDF warns individuals that scammers are leveraging the COVID-19 pandemic to steal your money, your personal information, or both. Protect yourself and do your research before clicking on links purporting to provide information on the virus; donating to a charity online or through social media; contributing to a crowdfunding - [The NYS Shield Act](https://www.globalsecurityiq.com/2020/03/05/the-nys-shield-act/) - In 2019, New York Governor Andrew Cuomo signed into law the Stop Hacks and Improve Electronic Data Security Act (SHIELD Act). The SHIELD Act expands data security and breach notification requirements to cover all businesses that collect private data from New York residents. Breach Notification Changes Notifications now must be provided to any New York - [What Makes a Strong Password?](https://www.globalsecurityiq.com/2020/01/04/what-makes-a-strong-password/) - What makes a password strong? They need to be long and complex to create a uniqueness about it that will be hard to crack from the hacker’s standpoint. Password requirements are getting more in-depth, below is a list of best practice requirements that are needed for a secure password: 1. Do not input any login, - [Cybersecurity Tips](https://www.globalsecurityiq.com/2019/12/04/cybersecurity-tips/) - Did you know that cyberattacks are becoming the biggest threat to the US financial system? Cybersecurity is everyone’s job. Ensure all employees are aware of the significant role they play in keeping your organization secure with GlobalSecurityIQ’s custom educational programs for boards, management, and employees on a broad spectrum of security topics. Breaches can impact - [Is your business a good candidate for a Penetration Test or a Vulnerability Scan?](https://www.globalsecurityiq.com/2019/09/10/penetration-testing-vs-vulnerability-scanning/) - Vulnerability Scanning vs. Penetration Testing Vulnerability scanning and penetration testing are both technical assessments that provide useful and often very detailed information about the security of your computing environment. Although these two assessments have a lot of similarities and are often used interchangeably by those outside of the cybersecurity realm, they are actually quite different. - [National Women's History Month](https://www.globalsecurityiq.com/2020/01/10/national-womens-history-month/) - Happy #NationalWomensHistoryMonth from our CEO Holly Hubert, CISSP, CISM, CGEIT, CRISC. Hubert spoke at Buffalo Business First Mentoring Monday event. The event highlighted over 40 different bizwomen mentors and mentees...truly an amazing day to engage with such exceptional women. Thank you Michelle Cioci, Donna Collins, and John Tebeau for hosting the event. - [Starting Your Cybersecurity Program...](https://www.globalsecurityiq.com/2019/11/15/starting-your-cybersecurity-program/) - The cybersecurity space is so “wide“ that practitioners in the field also often confuse the conversation by conflating terms like Vulnerability Assessment, Vulnerability Scan, and Penetration Test. We have many clients call for a “Penetration Test” what they really need is a fundamental assessment of their cybersecurity posture relative to risk and vulnerabilities. Any new ## Pages - [Front Page](https://www.globalsecurityiq.com/) - Cybersecurity Solutions: Risk Assessments, Vulnerability Scanning, Digital Forensics, Incident Response, Penetration Testing, CMMC, Education and Training - [Incident Response](https://www.globalsecurityiq.com/incident-response-2/) - Incident Response services neutralize the threat, manage the crisis, minimize the impact on your business, and help you recover as quickly as possible. - [Contact](https://www.globalsecurityiq.com/contact/) - Thank you for your interest in GlobalSecurityIQ, we look forward to hearing from you soon! Phone: (716) 475-9455 Email: info@globalsecurityiq.com - [Blog](https://www.globalsecurityiq.com/cybersecurity-blog/) - The field of Cybersecurity increases in complexity by the day. Stay up to date on the latest cybersecurity news, trends, and threats. - [Media](https://www.globalsecurityiq.com/media/) - Our very own Holly Hubert is a guest speaker at CLOUDSEC 2021 CLOUDSEC | TUESDAY, NOVEMBER 16, 2021 Experts say ransomware attack on Buffalo Public Schools should have been anticipated THE BUFFALO NEWS | TUESDAY, MARCH 16, 2021 Police reform task force releases draft report on Erie County Sheriff's Office WGRZ | WEDNESDAY, FEBRUARY 24, - [About Us](https://www.globalsecurityiq.com/globalsecurityiq-about-us/) - GlobalSecurityIQ is a collaboration of active/retired law enforcement officers and private sector IT engineers who are highly skilled in cybersecurity solutions - [Vulnerability Assessment](https://www.globalsecurityiq.com/vulnerability-assessment/) - GlobalSecurityIQ’s initial philosophy on addressing cybersecurity risk is to perform a comprehensive Vulnerability Assessment. - [Cybersecurity Maturity Model Certification (CMMC)](https://www.globalsecurityiq.com/cmmc/) - GlobalSecurityIQ is certified and trained by the CMMC Accreditation Body to both prepare and conduct your organization’s CMMC compliance assessment. - [Social Engineering](https://www.globalsecurityiq.com/social-engineering/) - Social Engineering is the psychological manipulation of people into performing actions or divulging confidential information. - [Compliance](https://www.globalsecurityiq.com/cybersecurity-compliance/) - After completing a Compliance Gap Analysis, GlobalSecurityIQ can help harden your cybersecurity posture and bring your business to full compliance. - [HIPAA Security Rule](https://www.globalsecurityiq.com/hipaa-security-rule/) - The HIPAA Security Rule establishes national standards to protect individuals’ electronic personal health information (ePHI) maintained by a covered entity. - [Education](https://www.globalsecurityiq.com/cyber-education/) - Cyber Education for Your Business Breaches are no longer just an IT problem. They touch every segment of an organization right up to the Board of Directors. The human element is again a key finding of Verizon’s 2019 Data Breach Investigations Report. Human beings continue to play a highly significant role in data breaches and - [Digital Forensics](https://www.globalsecurityiq.com/digital-forensics-2/) - Digital Forensics Examinations GlobalSecurityIQ maintains a highly mature and experienced digital forensics practice. We offer forensically sound and legally defensible data preservation, data collection, data recovery, data processing, forensic analysis, incident and breach response, and expert testimony services in support of e-Discovery, administrative investigations, and incident response. GlobalSecurityIQ Computer Forensics Laboratory The GlobalSecurityIQ Computer Forensics - [PCI DSS](https://www.globalsecurityiq.com/pci-dss/) - PCI DSS is an information security standard for organizations that accept, store, process and transmit credit card payments to prevent fraud and data breaches. - [Readiness Services and C3PAO Assessments](https://www.globalsecurityiq.com/cmmc-services/) - As an RPO, GlobalSecurityIQ is certified and trained by the CMMC Accreditation Body to prepare your organization for your CMMC compliance assessment. - [Penetration Testing](https://www.globalsecurityiq.com/penetration-testing/) - Penetration Testing services simulate realistic cybersecurity attacks on your environment without affecting your business processes. - [Security Services](https://www.globalsecurityiq.com/security-services-1/) - Risk Assessment Comprehensive assessment of your organization’s cybersecurity posture. Risks to your organization will be identified and actionable recommendations will be made to improve your network security and risk management processes. LEARN MORE HERE Vulnerability Scanning Vulnerability Scanning will identify technical vulnerabilities in your internal network, external network, and/or web applications missed by your anti-virus - [NYS DFS 23 NYCRR 500](https://www.globalsecurityiq.com/nys-dfs-23-nycrr-500/) - The NYS DFS 23 NYCRR 500 is a set of regulations from NY Department of Financial Services that require compliance from all covered financial institutions. These rules help ensure that businesses effectively protect client confidential information from cyberattacks and unauthorized access. This requires each covered entity to assess its specific risk profile and develop a - [Commercial Link](https://www.globalsecurityiq.com/globalsecurityiq-commercial/) - View our new GlobalSecurityIQ commercial for information on the cybersecurity services that we offer! ## Goals - [PDF Download](https://www.globalsecurityiq.com/b_a_goals/pdf-download/) - [Complete the Contact Us Form](https://www.globalsecurityiq.com/b_a_goals/complete-the-contact-us-form/) - [Collect User Feedback](https://www.globalsecurityiq.com/b_a_goals/collect-user-feedback/) - [Submit A Support Request](https://www.globalsecurityiq.com/b_a_goals/submit-a-support-request/) - [Agree To TOS](https://www.globalsecurityiq.com/b_a_goals/agree-to-tos/) - [Complete the Whitepaper Form](https://www.globalsecurityiq.com/b_a_goals/complete-the-whitepaper-form/) ## Media Hub - [GlobalSecurityIQ Commercial](https://www.globalsecurityiq.com/media/globalsecurityiq-commercial/) ## Quizzes & Surveys - [Phishing Training](https://www.globalsecurityiq.com/quiz/phishing-training/) - [Ventry Phishing Training](https://www.globalsecurityiq.com/quiz/ventry-phishing-training/) - [Xylon Phishing Training](https://www.globalsecurityiq.com/quiz/xylon-phishing-training/) - [Ontario Shores Phishing Training](https://www.globalsecurityiq.com/quiz/ontario-shores-phishing-training/) ## Categories - [Uncategorized](https://www.globalsecurityiq.com/category/uncategorized/) ## Tags - [CMMC](https://www.globalsecurityiq.com/tag/cmmc/) - [DOD](https://www.globalsecurityiq.com/tag/dod/) - [cybersecurity](https://www.globalsecurityiq.com/tag/cybersecurity/) - [readiness](https://www.globalsecurityiq.com/tag/readiness/) - [assessment](https://www.globalsecurityiq.com/tag/assessment/) - [certification](https://www.globalsecurityiq.com/tag/certification/) - [maturity](https://www.globalsecurityiq.com/tag/maturity/) - [model](https://www.globalsecurityiq.com/tag/model/) - [contracts](https://www.globalsecurityiq.com/tag/contracts/) - [CMMC-AB](https://www.globalsecurityiq.com/tag/cmmc-ab/) - [NIST](https://www.globalsecurityiq.com/tag/nist/) - [TikTok](https://www.globalsecurityiq.com/tag/tiktok/) - [security](https://www.globalsecurityiq.com/tag/security/) - [data](https://www.globalsecurityiq.com/tag/data/) - [data harvesting](https://www.globalsecurityiq.com/tag/data-harvesting/) - [privacy](https://www.globalsecurityiq.com/tag/privacy/) - [personal data](https://www.globalsecurityiq.com/tag/personal-data/) - [facebook](https://www.globalsecurityiq.com/tag/facebook/) - [risks](https://www.globalsecurityiq.com/tag/risks/) - [ransomware](https://www.globalsecurityiq.com/tag/ransomware/) - [hack](https://www.globalsecurityiq.com/tag/hack/) - [encryption](https://www.globalsecurityiq.com/tag/encryption/) - [pilot](https://www.globalsecurityiq.com/tag/pilot/) - [internal network](https://www.globalsecurityiq.com/tag/internal-network/) - [attack](https://www.globalsecurityiq.com/tag/attack/) - [restore](https://www.globalsecurityiq.com/tag/restore/) - [data breach](https://www.globalsecurityiq.com/tag/data-breach/) - [cost](https://www.globalsecurityiq.com/tag/cost/) - [breach](https://www.globalsecurityiq.com/tag/breach/) - [IBM](https://www.globalsecurityiq.com/tag/ibm/) - [million](https://www.globalsecurityiq.com/tag/million/) - [globalsecurityiq](https://www.globalsecurityiq.com/tag/globalsecurityiq/) - [organizations](https://www.globalsecurityiq.com/tag/organizations/) - [protect](https://www.globalsecurityiq.com/tag/protect/) - [COVID-19](https://www.globalsecurityiq.com/tag/covid-19/) - [cybersecurity awareness month](https://www.globalsecurityiq.com/tag/cybersecurity-awareness-month/) - [verizon](https://www.globalsecurityiq.com/tag/verizon/) - [october](https://www.globalsecurityiq.com/tag/october/) - [aware](https://www.globalsecurityiq.com/tag/aware/) - [attackers](https://www.globalsecurityiq.com/tag/attackers/) - [cold-call](https://www.globalsecurityiq.com/tag/cold-call/) - [cyberattack](https://www.globalsecurityiq.com/tag/cyberattack/) - [ZDNet](https://www.globalsecurityiq.com/tag/zdnet/) - [victims](https://www.globalsecurityiq.com/tag/victims/) - [malware](https://www.globalsecurityiq.com/tag/malware/) - [microsoft](https://www.globalsecurityiq.com/tag/microsoft/) - [adrozek](https://www.globalsecurityiq.com/tag/adrozek/) - [defender](https://www.globalsecurityiq.com/tag/defender/) - [browser](https://www.globalsecurityiq.com/tag/browser/) - [credentials](https://www.globalsecurityiq.com/tag/credentials/) - [firefox](https://www.globalsecurityiq.com/tag/firefox/) - [malicious actor](https://www.globalsecurityiq.com/tag/malicious-actor/) - [search](https://www.globalsecurityiq.com/tag/search/)